Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Log Name: System
- Source: LsaSrv
- Date: 13/09/2024 07:55:33
- Event ID: 6155
- Task Category: None
- Level: Warning
- Keywords:
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- LSA package is not signed as expected. This can cause unexpected behavior with Credential Guard.
- PackageName: tspkg
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="LsaSrv" Guid="{199fe037-2b82-40a9-82ac-e1d46c792b99}" />
- <EventID>6155</EventID>
- <Version>0</Version>
- <Level>3</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x8000000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:33.0809929Z" />
- <EventRecordID>44</EventRecordID>
- <Correlation ActivityID="{89127efe-05a1-0004-8981-1289a105db01}" />
- <Execution ProcessID="872" ThreadID="876" />
- <Channel>System</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- <Data Name="PackageName">tspkg</Data>
- </EventData>
- </Event>
- Log Name: System
- Source: LsaSrv
- Date: 13/09/2024 07:55:33
- Event ID: 6155
- Task Category: None
- Level: Warning
- Keywords:
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- LSA package is not signed as expected. This can cause unexpected behavior with Credential Guard.
- PackageName: cloudap
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="LsaSrv" Guid="{199fe037-2b82-40a9-82ac-e1d46c792b99}" />
- <EventID>6155</EventID>
- <Version>0</Version>
- <Level>3</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x8000000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:33.0879896Z" />
- <EventRecordID>46</EventRecordID>
- <Correlation ActivityID="{89127efe-05a1-0004-8981-1289a105db01}" />
- <Execution ProcessID="872" ThreadID="876" />
- <Channel>System</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- <Data Name="PackageName">cloudap</Data>
- </EventData>
- </Event>
- Log Name: System
- Source: LsaSrv
- Date: 13/09/2024 07:55:33
- Event ID: 6155
- Task Category: None
- Level: Warning
- Keywords:
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- LSA package is not signed as expected. This can cause unexpected behavior with Credential Guard.
- PackageName: pku2u
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="LsaSrv" Guid="{199fe037-2b82-40a9-82ac-e1d46c792b99}" />
- <EventID>6155</EventID>
- <Version>0</Version>
- <Level>3</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x8000000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:33.0838251Z" />
- <EventRecordID>45</EventRecordID>
- <Correlation ActivityID="{89127efe-05a1-0004-8981-1289a105db01}" />
- <Execution ProcessID="872" ThreadID="876" />
- <Channel>System</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- <Data Name="PackageName">pku2u</Data>
- </EventData>
- </Event>
- Log Name: System
- Source: LsaSrv
- Date: 13/09/2024 07:55:33
- Event ID: 6155
- Task Category: None
- Level: Warning
- Keywords:
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- LSA package is not signed as expected. This can cause unexpected behavior with Credential Guard.
- PackageName: msv1_0
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="LsaSrv" Guid="{199fe037-2b82-40a9-82ac-e1d46c792b99}" />
- <EventID>6155</EventID>
- <Version>0</Version>
- <Level>3</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x8000000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:33.0695731Z" />
- <EventRecordID>43</EventRecordID>
- <Correlation />
- <Execution ProcessID="872" ThreadID="876" />
- <Channel>System</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- <Data Name="PackageName">msv1_0</Data>
- </EventData>
- </Event>
- Log Name: System
- Source: LsaSrv
- Date: 13/09/2024 07:55:33
- Event ID: 6155
- Task Category: None
- Level: Warning
- Keywords:
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- LSA package is not signed as expected. This can cause unexpected behavior with Credential Guard.
- PackageName: negoexts
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="LsaSrv" Guid="{199fe037-2b82-40a9-82ac-e1d46c792b99}" />
- <EventID>6155</EventID>
- <Version>0</Version>
- <Level>3</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x8000000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:33.0422292Z" />
- <EventRecordID>41</EventRecordID>
- <Correlation />
- <Execution ProcessID="872" ThreadID="876" />
- <Channel>System</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- <Data Name="PackageName">negoexts</Data>
- </EventData>
- </Event>
- Log Name: System
- Source: Microsoft-Windows-Wininit
- Date: 13/09/2024 07:55:32
- Event ID: 15
- Task Category: None
- Level: Warning
- Keywords:
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- Credential Guard and/or VBS Key Isolation are configured but the secure kernel is not running; continuing without them.
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="Microsoft-Windows-Wininit" Guid="{206f6dea-d3c5-4d10-bc72-989f03c8b84b}" />
- <EventID>15</EventID>
- <Version>0</Version>
- <Level>3</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x4000000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:32.9713642Z" />
- <EventRecordID>38</EventRecordID>
- <Correlation />
- <Execution ProcessID="704" ThreadID="708" />
- <Channel>System</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- </EventData>
- </Event>
- Log Name: System
- Source: LsaSrv
- Date: 13/09/2024 07:55:33
- Event ID: 6155
- Task Category: None
- Level: Warning
- Keywords:
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- LSA package is not signed as expected. This can cause unexpected behavior with Credential Guard.
- PackageName: kerberos
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="LsaSrv" Guid="{199fe037-2b82-40a9-82ac-e1d46c792b99}" />
- <EventID>6155</EventID>
- <Version>0</Version>
- <Level>3</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x8000000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:33.0512834Z" />
- <EventRecordID>42</EventRecordID>
- <Correlation />
- <Execution ProcessID="872" ThreadID="876" />
- <Channel>System</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- <Data Name="PackageName">kerberos</Data>
- </EventData>
- </Event>
- Log Name: System
- Source: Service Control Manager
- Date: 13/09/2024 07:55:39
- Event ID: 7023
- Task Category: None
- Level: Error
- Keywords: Classic
- User: N/A
- Computer: WIN-JS4IG1DT3CG
- Description:
- The netprofm service terminated with the following error:
- The device is not ready.
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="Service Control Manager" Guid="{555908d1-a6d7-4695-8e1e-26931d2012f4}" EventSourceName="Service Control Manager" />
- <EventID Qualifiers="49152">7023</EventID>
- <Version>0</Version>
- <Level>2</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x8080000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:39.9085701Z" />
- <EventRecordID>63</EventRecordID>
- <Correlation />
- <Execution ProcessID="848" ThreadID="940" />
- <Channel>System</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security />
- </System>
- <EventData>
- <Data Name="param1">netprofm</Data>
- <Data Name="param2">%%21</Data>
- <Binary>6E0065007400700072006F0066006D000000</Binary>
- </EventData>
- </Event>
- Log Name: Microsoft-Windows-AppModel-Runtime/Admin
- Source: Microsoft-Windows-AppModel-Runtime
- Date: 13/09/2024 07:55:33
- Event ID: 21
- Task Category: None
- Level: Error
- Keywords: (70368744177664),AppContainer
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- CreateAppContainerProfile failed for AppContainer onecore\ds\security\gina\profile\profext\appcontainer.cpp Line:1886 Usermode Font Driver Host microsoft.windows.fontdrvhost with error 0x8007000A.
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="Microsoft-Windows-AppModel-Runtime" Guid="{f1ef270a-0d32-4352-ba52-dbab41e1d859}" />
- <EventID>21</EventID>
- <Version>0</Version>
- <Level>2</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x2000400000000002</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:33.2497648Z" />
- <EventRecordID>1</EventRecordID>
- <Correlation />
- <Execution ProcessID="704" ThreadID="780" />
- <Channel>Microsoft-Windows-AppModel-Runtime/Admin</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- <Data Name="ErrorCode">2147942410</Data>
- <Data Name="Context">onecore\ds\security\gina\profile\profext\appcontainer.cpp Line:1886 Usermode Font Driver Host microsoft.windows.fontdrvhost</Data>
- </EventData>
- </Event>
- Log Name: Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider/Admin
- Source: Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider
- Date: 13/09/2024 07:57:13
- Event ID: 844
- Task Category: None
- Level: Error
- Keywords:
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- MDM PolicyManager: During Inbox found bad enrollment (82965F5A-6C65-4B7A-8075-488FCCE07D4E) during merge. Requesting merge (1e05dd5d-a022-46c5-963c-b20de341170f). Deleting policies for the enrollment. Enrollment state is (Your file waiting to be printed was deleted.).
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider" Guid="{3da494e4-0fe2-415c-b895-fb5265c5c83b}" />
- <EventID>844</EventID>
- <Version>0</Version>
- <Level>2</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x8000000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:57:13.6472404Z" />
- <EventRecordID>2</EventRecordID>
- <Correlation />
- <Execution ProcessID="1116" ThreadID="1144" />
- <Channel>Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider/Admin</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- <Data Name="Message1">Inbox</Data>
- <Data Name="Message2">82965F5A-6C65-4B7A-8075-488FCCE07D4E</Data>
- <Data Name="Message3">1e05dd5d-a022-46c5-963c-b20de341170f</Data>
- <Data Name="HRESULT">0x3f</Data>
- </EventData>
- </Event>
- Log Name: System
- Source: LsaSrv
- Date: 13/09/2024 07:55:33
- Event ID: 6155
- Task Category: None
- Level: Warning
- Keywords:
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- LSA package is not signed as expected. This can cause unexpected behavior with Credential Guard.
- PackageName: msv1_0
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="LsaSrv" Guid="{199fe037-2b82-40a9-82ac-e1d46c792b99}" />
- <EventID>6155</EventID>
- <Version>0</Version>
- <Level>3</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x8000000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:33.1219892Z" />
- <EventRecordID>50</EventRecordID>
- <Correlation ActivityID="{89127efe-05a1-0004-8981-1289a105db01}" />
- <Execution ProcessID="872" ThreadID="876" />
- <Channel>System</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- <Data Name="PackageName">msv1_0</Data>
- </EventData>
- </Event>
- Log Name: System
- Source: LsaSrv
- Date: 13/09/2024 07:55:33
- Event ID: 6155
- Task Category: None
- Level: Warning
- Keywords:
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- LSA package is not signed as expected. This can cause unexpected behavior with Credential Guard.
- PackageName: wdigest
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="LsaSrv" Guid="{199fe037-2b82-40a9-82ac-e1d46c792b99}" />
- <EventID>6155</EventID>
- <Version>0</Version>
- <Level>3</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x8000000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:33.1123166Z" />
- <EventRecordID>47</EventRecordID>
- <Correlation ActivityID="{89127efe-05a1-0004-8981-1289a105db01}" />
- <Execution ProcessID="872" ThreadID="876" />
- <Channel>System</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- <Data Name="PackageName">wdigest</Data>
- </EventData>
- </Event>
- Log Name: System
- Source: LsaSrv
- Date: 13/09/2024 07:55:33
- Event ID: 6155
- Task Category: None
- Level: Warning
- Keywords:
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- LSA package is not signed as expected. This can cause unexpected behavior with Credential Guard.
- PackageName: schannel
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="LsaSrv" Guid="{199fe037-2b82-40a9-82ac-e1d46c792b99}" />
- <EventID>6155</EventID>
- <Version>0</Version>
- <Level>3</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x8000000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:33.1172779Z" />
- <EventRecordID>48</EventRecordID>
- <Correlation ActivityID="{89127efe-05a1-0004-8981-1289a105db01}" />
- <Execution ProcessID="872" ThreadID="876" />
- <Channel>System</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- <Data Name="PackageName">schannel</Data>
- </EventData>
- </Event>
- Log Name: System
- Source: LsaSrv
- Date: 13/09/2024 07:55:33
- Event ID: 6155
- Task Category: None
- Level: Warning
- Keywords:
- User: SYSTEM
- Computer: WIN-JS4IG1DT3CG
- Description:
- LSA package is not signed as expected. This can cause unexpected behavior with Credential Guard.
- PackageName: sfapm
- Event Xml:
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
- <Provider Name="LsaSrv" Guid="{199fe037-2b82-40a9-82ac-e1d46c792b99}" />
- <EventID>6155</EventID>
- <Version>0</Version>
- <Level>3</Level>
- <Task>0</Task>
- <Opcode>0</Opcode>
- <Keywords>0x8000000000000000</Keywords>
- <TimeCreated SystemTime="2024-09-13T05:55:33.1216503Z" />
- <EventRecordID>49</EventRecordID>
- <Correlation ActivityID="{89127efe-05a1-0004-8981-1289a105db01}" />
- <Execution ProcessID="872" ThreadID="876" />
- <Channel>System</Channel>
- <Computer>WIN-JS4IG1DT3CG</Computer>
- <Security UserID="S-1-5-18" />
- </System>
- <EventData>
- <Data Name="PackageName">sfapm</Data>
- </EventData>
- </Event>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement